Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File load.exe received on 2008.12.03 06:34:06 (UTC)
Current status: finished
Result: 6/37 (16.22%)
Antivirus Version Last Update Result
AhnLab-V3 2008.12.2.2 2008.12.03 -
AntiVir 7.9.0.36 2008.12.02 -
Authentium 5.1.0.4 2008.12.02 -
Avast 4.8.1281.0 2008.12.02 -
AVG 8.0.0.199 2008.12.03 -
BitDefender 7.2 2008.12.03 -
CAT-QuickHeal 10.00 2008.12.03 -
ClamAV 0.94.1 2008.12.03 -
DrWeb 4.44.0.09170 2008.12.03 Trojan.Botnetlog.1
eSafe 7.0.17.0 2008.12.02 Suspicious File
eTrust-Vet 31.6.6240 2008.12.03 -
Ewido 4.0 2008.12.02 -
F-Prot 4.4.4.56 2008.12.02 -
F-Secure 8.0.14332.0 2008.12.03 Trojan-Downloader.Win32.Agent.asqx
Fortinet 3.117.0.0 2008.12.03 -
GData 19 2008.12.03 -
Ikarus T3.1.1.45.0 2008.12.03 -
K7AntiVirus 7.10.540 2008.12.02 -
Kaspersky 7.0.0.125 2008.12.03 Trojan-Downloader.Win32.Agent.asqx
McAfee 5452 2008.12.02 -
McAfee+Artemis 5452 2008.12.02 -
Microsoft 1.4205 2008.12.03 -
NOD32 3659 2008.12.02 Win32/Wigon.HG
Norman 5.80.02 2008.12.02 -
Panda 9.0.0.4 2008.12.02 -
PCTools 4.4.2.0 2008.12.02 -
Prevx1 V2 2008.12.03 -
Rising 21.06.12.00 2008.12.02 -
SecureWeb-Gateway 6.7.6 2008.12.03 -
Sophos 4.36.0 2008.12.03 -
Sunbelt 3.1.1832.2 2008.12.01 -
Symantec 10 2008.12.03 -
TheHacker 6.3.1.2.172 2008.12.02 -
TrendMicro 8.700.0.1004 2008.12.03 -
VBA32 3.12.8.10 2008.12.02 suspected of Malware-Cryptor.Win32.General.3
ViRobot 2008.12.3.1497 2008.12.03 -
VirusBuster 4.5.11.0 2008.12.02 -
Additional information
File size: 27136 bytes
MD5...: 7760344005febafec5a2cbf3f375ae0e
SHA1..: 799afbf760e3972a4efeb094bc291e8970981a27
SHA256: 7c03fcaae2643bb76e8fbfa477b806e524feeeeda13de322a14a71ae4fe358e7
SHA512: b1ed764b541c4829682cc5c29df001b283af9a496ba5b0578539706a4b21d046
36ef688fb56cd0a305b35d99c8418f2779efc42abd36b588498551b25d7d0f8e
ssdeep: 768:2AtmlxHbt3xcuPEW1Gh6j/k3refTgD0VIuXbt:2g8xphcuPEaGh6bErQgQVI
6t
PEiD..: -
TrID..: File type identification
Win64 Executable Generic (80.9%)
Win32 Executable Generic (8.0%)
Win32 Dynamic Link Library (generic) (7.1%)
Generic Win/DOS Executable (1.8%)
DOS Executable Generic (1.8%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x405e12
timedatestamp.....: 0x47d00e8d (Thu Mar 06 15:32:29 2008)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x5945 0x5a00 7.82 b81d50ec18d2fcb466ca58f79c09f53f
.data 0x7000 0x877 0x800 5.28 fa7af6624feb7c1b4e9ac7800626f0c7
.rsrc 0x8000 0x3a8 0x400 3.14 8523ca9556f934c778645be802609110

( 3 imports )
> ole32.dll: OleDraw, CoRevokeClassObject, OleCreateFromData, CoAddRefServerProcess, CoGetObjectContext, OleSetAutoConvert, CoIsOle1Class, CoFreeLibrary, OleIsRunning, OleLockRunning, OleCreateFromDataEx, OleIsCurrentClipboard, CoMarshalInterThreadInterfaceInStream, CoGetMarshalSizeMax, CoRegisterSurrogate, CoMarshalInterface, OleDoAutoConvert, OleCreateStaticFromData
> ADVAPI32.dll: RegQueryValueExA, QueryServiceConfigA, GetAce, RegConnectRegistryA, IsValidSecurityDescriptor, LookupPrivilegeValueW, GetKernelObjectSecurity, MapGenericMask, SetTokenInformation, GetSidSubAuthorityCount, LookupPrivilegeValueA, CloseServiceHandle, StartServiceA, AddAce, CreateProcessAsUserA, EqualSid, OpenServiceA
> KERNEL32.dll: LocalAlloc, HeapFree, RtlUnwind, GetStringTypeA, TerminateProcess, MulDiv, VirtualQueryEx, CreateProcessA, LeaveCriticalSection, SetEvent, PulseEvent, GetPriorityClass, LCMapStringA, GetNumberFormatA, GetCurrentThreadId, DeviceIoControl, OpenProcess, GetCurrentThread, IsValidCodePage, MultiByteToWideChar, IsDebuggerPresent

( 0 exports )
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=7760344005febafec5a2cbf3f375ae0e
CWSandbox info: http://research.sunbelt-software.com/partnerresource/MD5.aspx?md5=7760344005febafec5a2cbf3f375ae0e

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file